Digital Risk Grc Expert

il y a 2 semaines


Luxembourg KPMG Temps plein

**Find your purpose at KPMG Luxembourg**

Join a team of diverse and dedicated problem solvers, connected by a common cause: to turn insight into opportunity for clients and communities around the world. If you are eager to learn, are interested in growing rapidly and strive to make an impact in a diverse environment, you're in the right place at the right time.

Learn more about Careers at KPMG Luxembourg

Join our dynamic Information Security team as a Digital Risk GRC Expert and play a key role in shaping the firm’s security and compliance strategy. This is your opportunity to drive real impact by helping us manage risk, stay ahead of regulatory challenges, and build a best-in-class governance, risk, and compliance program. You will work cross-functionally with business and technical teams to implement robust frameworks that ensure resilience, regulatory alignment, and business continuity.

**What you will be working on**:
**Lead Risk & Compliance Initiatives**
- Drive the development and deployment of technical security standards and tools to proactively mitigate information security risks.
- Lead the identification and treatment of non-conformities and exceptions related to security policies, ISO27001 norms, and GDPR compliance.
- Conduct thorough compliance assessments and provide guidance on regulatory and contractual requirements.
- Review contracts with a security lens and contribute to client RFPs by ensuring compliance and security excellence in all deliverables.

**Build and Strengthen Governance Frameworks**
- Develop a scalable risk decision-making framework to prioritize focus areas and support informed decisions.
- Partner with key stakeholders (Information Security Officer, NITSO, QRMP) to align governance efforts and embed security into the business.
- Monitor evolving regulations and industry standards to ensure ongoing compliance and adapt security policies accordingly.

**Enhance Risk Management Capability**
- Design and implement a Risk Management Framework using ISO27005 standards and associated tools.
- Perform regular risk assessments, track compliance metrics, and drive continuous improvement.
- Provide insights and support for internal and external audits, as well as third-party security evaluations.

**What we look for**:
**Your Background**
- Master’s degree in IT or a related field, with a specialization in Information Security.
- Minimum of 6 years of hands-on experience in information security, including at least 2 years focused on compliance and/or risk management.
- Your Skills and Knowledge
- Deep understanding of ISMS and ISO 27001 implementation.
- Proficient in Information Security Risk Management methodologies (ISO27005).
- Solid knowledge of IT systems including infrastructure, software development, and data protection.
- Certifications such as ISO27001 Lead Implementer and ISO27005 Risk Manager are essential.
- CISSP, CISM, or similar credentials are a strong plus.
- Strong project management capabilities and the ability to lead cross-functional initiatives.

**Your Personal Strengths**
- Meticulous, analytical, and results-driven.
- Exceptional communication, writing, and documentation skills.
- Comfortable engaging with stakeholders at all levels and presenting complex ideas with clarity.
- A proactive and independent mindset, with the ability to collaborate effectively in a team setting.
- A client-focused and business-oriented approach to solving security challenges.

**What you will get**

We offer more than just a job. With our flexible work model, you can work, rest and recharge. Our competitive compensation packages, paid time off, recognition bonuses and dedicated programs for personal development and well-being help to keep you refreshed and motivated.

We will accompany you on a journey of professional growth, offering an expansive spectrum of prospects to elevate your career in Luxembourg, an emerging financial center. Feel a sense of belonging by enjoying year-round celebrations and engaging events that bring us all together.

Join our next generation

**#FindYourPurposeAtKPMG #TeamBlue**

KPMG is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. Our recruiting decisions are based on your experience and skills.


  • SAP Security/grc Consultant

    il y a 2 semaines


    Luxembourg Vertex IT Recruitment Temps plein

    **Required Skills**: - Broad knowledge and experience in SAP GRC, specifically in Access Controls (Access Request Management (ARQ) and Access Risk Analysis (ARA) - Exposure to SAP GRC version 10.1 and experience with S/4 HANA including Fiori Artifacts, HANA, and S/4 HANA Security is preferred - Some exposure to SAP GRC Process Controls and Access Violation...


  • Luxembourg IKE Temps plein

    Entreprise innovante à dimension humaine. **Growing**together**: Évoluez avec iKe. l'ESN qui redéfinit l'excellence. Misez sur la formation continue, profitez d'un suivi personnalisé et contribuez au succès de nos projets tout en façonnant votre carrière. Ambition, transparence, excellence: nous grandissons ensemble. Chez iKe. la technologie n'est...


  • Luxembourg KPMG Luxembourg Temps plein

    **Find your purpose at KPMG Luxembourg** We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all. We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax...

  • Financial Risk Experts

    il y a 1 semaine


    Luxembourg Charles Oakes Temps plein

    Join our team supporting **European Institutions **such as the European Parliament and European Institutions** and major commercial organisations **in the historic and exciting city of **Luxembourg. **We offer the opportunity to further your career by gaining experience supporting key business process tools used to evaluate and support development projects...


  • Luxembourg KPMG Luxembourg Temps plein

    **Find your purpose at KPMG Luxembourg** We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all. We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax...

  • Risk Manager

    il y a 2 semaines


    Luxembourg BlackRidge Group Temps plein

    **Job Information**: Work Experience - 4-5 ans Industry - Financial Services Contact Number - + 352 28 81 68 11 City - Luxembourg Country - Luxembourg Province - Luxembourg Postal Code - L-1911 As Risk Manager, you will be reporting to the Head of Risk & Compliance. You will be responsible for maintaining and developing the Risk Management &...


  • Luxembourg Spuerkeess Temps plein

    **Département**: Risk Management **Service**: Financial Risk Management **Vos missions** En tant que Market & Liquidity Risk Expert, vous serez chargé(e) de la surveillance des risques structurels. Vos principales responsabilités sont les suivantes: - Identifier et quantifier les risques - Effectuer le contrôle du respect de l'appétit aux risques -...

  • Privacy Risk Expert

    il y a 3 jours


    Luxembourg KPMG Luxembourg Temps plein

    **Find your purpose at KPMG Luxembourg** We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all. We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax...


  • Luxembourg Acumin Consulting Temps plein

    You should have: - The ability to know what best practice security and risk / GRC looks like in organisations and be able to implement this in a complex financial services organisation to improve cyber resilience; - Have very strong regulatory experience, able to deal with the local regulators and CSSF requirements, and able to liaise with various internal...


  • Luxembourg PayPal Temps plein

    At PayPal (NASDAQ: PYPL), we believe that every person has the right to participate fully in the global economy. Our mission is to democratize financial services to ensure that everyone, regardless of background or economic standing, has access to affordable, convenient, and secure products and services to take control of their financial lives. **Job...